Tags give the ability to mark specific points in history as being important
  • production
  • staging
  • v2.0.0
    bffb0668 · Release version 2.0.0 ·
  • v2.0.1
    d5fe7aaa · Release version 2.0.1 ·
  • v2.0.2
    9d98e5df · Release version 2.0.2 ·
  • v2.0.3
    1323122d · Release version 2.0.3 ·
    Release version 2.0.3
    
    This release fixes a security vulnerability in the account management
    API. It is highly recommended to upgrade if you are using database
    authentication.
    
    Additional changes:
    * Libraries have been upgraded to fix potential bugs
    * Some unnecessary log warnings for Websocket communication are filtered
    
  • v2.0.4
    aa4e5c43 · Release version 2.0.4 ·
    Release version 2.0.4
    
    This release fixes a security vulnerability caused by the CORS
    implementation. Support for cross-origin requests has been removed. Use
    ARSnova version 2.2 or newer for proper CORS. (Reported by Rainer Rillke
    at Wikimedia)
    
    Additional changes:
    * Libraries have been upgraded to fix potential bugs
    
  • v2.1.0
    c2280541 · Release version 2.1.0 ·
  • v2.1.1
    c6cdba4a · Release version 2.1.1 ·
    Release version 2.1.1
    
    This release fixes a security vulnerability in the account management
    API. It is highly recommended to upgrade if you are using database
    authentication.
    
    Additional changes:
    * Libraries have been upgraded to fix potential bugs
    
  • v2.1.2
    c5389a35 · Release version 2.1.2 ·
    Release version 2.1.2
    
    This release fixes a security vulnerability caused by the CORS
    implementation. Support for cross-origin requests has been removed. Use
    ARSnova version 2.2 or newer for proper CORS. (Reported by Rainer Rillke
    at Wikimedia)
    
    Additional changes:
    * Libraries have been upgraded to fix potential bugs
    
  • v2.2.0
    2acc1ddf · Release version 2.2.0 ·
    Release version 2.2.0
    
    This release massively improves performance of ARSnova and contains a critical
    bugfix so it is highly recommended to upgrade. Because of the newly introduced
    caching method, it might be necessary to increase the Java memory limit for
    servlet containers.
    
    Major features:
    * Performance improvements: Database queries are now cached by the backend.
      Answers are written to the database in batches.
    * Pagination support: The range of results can now be limited.
    * The API has been extended to support features introduced with ARSnova Mobile
      2.2.
    
    Bugfixes:
    * User content consisting of JSON could not be loaded and rendered connected
      data unloadable as well.
    
    This version is brought to you by:
    Project management: Klaus Quibeldey-Cirkel
    Lead programming: Andreas Gärtner, Daniel Gerhardt, Christoph Thelen
    Contributions: Dominik Hikade, Tom Käsler, Maximilian Klingelhöfer,
    Michael Sann, Jan Sladek, Katharina Staden
    
  • v2.2.1
    1cf15708 · Release version 2.2.1 ·
    Release version 2.2.1
    
    This release fixes a security vulnerability in the account management
    API. It is highly recommended to upgrade if you are using database
    authentication.
    
    Additional bug fixes:
    * The `security.authentication.login-try-limit` setting now works as
      intended.
    
  • v2.2.2
    faa6d978 · Release version 2.2.2 ·
    Release version 2.2.2
    
    This release fixes a security vulnerability caused by the CORS
    implementation. Origins allowed for CORS can now be set in the
    configuration via `security.cors.origins`. (Reported by Rainer Rillke at
    Wikimedia)
    
    Additional changes:
    * Libraries have been upgraded to fix potential bugs
    
  • v2.3.0
    d3444964 · Release version 2.3.0 ·
    Release version 2.3.0
    
    Major features:
    * Improved LDAP authentication support: Additional settings for LDAP
      search and a privileged LDAP user have been added.
    * Usernames for admin accounts can now be set up in the configuration
      file. These accounts are privileged to create global "Messages of the
      Day". Additional privileges might be added for them in future
      releases.
    * Splash screen settings have been added to override the frontend
      theme's defaults.
    * The API has been extended to support features introduced with ARSnova
      Mobile 2.3.
    
    Minor features and changes:
    * Markdown formatting, learning progress, student's own questions and
      the question format flashcard are now active by default and can no
      longer be disabled for the whole ARSnova installation.
    
    Bugfixes:
    * The `security.authentication.login-try-limit` setting now works as
      intended.
    
    Changes for developers:
    * API documentation is now exposed in Swagger format.
    * Startup time of Jetty has been significantly reduced.
    * Version information is now saved with builds and exposed by the API.
    
    **This version is brought to you by:**
    Project management: Klaus Quibeldey-Cirkel
    Lead programming: Andreas Gärtner, Daniel Gerhardt, Tom "tekay"
    Käsler, Christoph Thelen
    Contributions: Eduard Ellert, Tjark Wilhelm Hoeck, Mohamed Sami Jarmoud,
    Stefan Schmeißer, Paul-Christian Volkmer
    
  • v2.3.1
    0df360b3 · Release version 2.3.1 ·
    Release version 2.3.1
    
    Bug fixes:
    * Case-insensitive user IDs are now correctly handled for LDAP
      authentication.
    * LDAP authentication does no longer request unnecessary user
      attributes.
    
  • v2.3.2
    dcf6ae64 · Release version 2.3.2 ·
    Release version 2.3.2
    
    This release fixes a security vulnerability in the account management
    API. It is highly recommended to upgrade if you are using database
    authentication.
    
    Additional changes:
    * Libraries have been upgraded to fix potential bugs
    
  • v2.3.3
    e214cd69 · Release version 2.3.3 ·
    Release version 2.3.3
    
    This release fixes a security vulnerability caused by the CORS
    implementation. Origins allowed for CORS can now be set in the
    configuration via `security.cors.origins`. (Reported by Rainer Rillke at
    Wikimedia)
    
    Additional changes:
    * Libraries have been upgraded to fix potential bugs
    
  • v2.3.4
    6019ecda · Release version 2.3.4 ·
    Release version 2.3.4
    
    This release fixes a minor security vulnerability which allowed an
    attacker to remove a MotD from a session without being the creator.
    
    Additional changes:
    * Libraries have been upgraded to fix potential bugs
    
  • v2.4.0
    f2e1b14e · Release version 2.4.0 ·
    Release version 2.4.0
    
    Major features:
    * Support for new use case and feature settings has been added.
    
    Minor features and changes:
    * New API endpoints have been added to reduce requests on session
      imports.
    * Session use case and feature settings are now included in exports and
      imports.
    * Authentication providers can now be enabled separately for students
      and lecturers.
    * A new suspended votes offset setting has been added.
    * JSON export and import now include session info and feature settings.
    
    Bug fixes:
    * Deleted sessions are now correctly evicted from cache.
    * Answer count calculation for free text questions has been fixed.
    
  • v2.4.1
    72659b09 · Release version 2.4.1 ·
    Release version 2.4.1
    
    This release fixes a security vulnerability caused by the CORS
    implementation. Origins allowed for CORS can now be set in the
    configuration via `security.cors.origins`. (Reported by Rainer Rillke at
    Wikimedia)
    
    Additionally, authentication via disabled services is now entirely
    blocked to fix a security vulnerability allowing guest access despite
    the setting `security.guest.enabled=false`. (Reported by Rainer Rillke
    at Wikimedia)
    
    Additional changes:
    * Libraries have been upgraded to fix potential bugs